Preprint
Sep 2026
PhantomCall: Evading ML Malware Detectors via Function Call Graph Perturbation
Phan- tomCall is presented, a black-box attack that perturbs the FCG of Windows PE malware by injecting fully executable dummy functions at targeted call sites, adding new nodes and edges to both the CFG and FCG while preserving program semantics.
Md Ajwad Akil, Adrian Shuai Li, Imtiaz Karim et al.
· 0 citations